chewbaccaa | 12.12.2012 22:23 | Eine Vermutung von mir wäre vielleicht noch, dass meine Tastatur (Microsoft SideWinder X4 Tastatur) Makros erstellen kann und die somit auch 1:1 abrufen kann. Es wäre eine Möglichkeit, dass wenn ich etwas bestimmtes an meinen Freund schreibe, ich dieses Makro aktiviere.
Aber hier die Logfile:
OTL Logfile: Code:
OTL logfile created on: 12.12.2012 22:07:13 - Run 3
OTL by OldTimer - Version Folder = C:\Users\Skywalk3r\Downloads
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
15,87 Gb Total Physical Memory | 13,48 Gb Available Physical Memory | 84,97% Memory free
31,73 Gb Paging File | 29,11 Gb Available in Paging File | 91,73% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 439,67 Gb Total Space | 293,69 Gb Free Space | 66,80% Space Free | Partition Type: NTFS
Drive E: | 329,75 Gb Total Space | 139,95 Gb Free Space | 42,44% Space Free | Partition Type: NTFS
Drive F: | 100,00 Mb Total Space | 71,86 Mb Free Space | 71,87% Space Free | Partition Type: NTFS
Drive G: | 293,41 Gb Total Space | 157,67 Gb Free Space | 53,74% Space Free | Partition Type: NTFS
Computer Name: BOMBERCHEN | User Name: Skywalk3r | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://{searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://{searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = hxxp://{searchTerms}&SearchSource=4&ctid=CT2851647
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3963389296-900692964-1275611924-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Suche
IE - HKU\S-1-5-21-3963389296-900692964-1275611924-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
IE - HKU\S-1-5-21-3963389296-900692964-1275611924-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = ED E4 A7 24 C5 9F CC 01 [binary data]
IE - HKU\S-1-5-21-3963389296-900692964-1275611924-1001\..\URLSearchHook: {c840e246-6b95-475e-9bd7-caa1c7eca9f2} - No CLSID value found
IE - HKU\S-1-5-21-3963389296-900692964-1275611924-1001\..\SearchScopes,DefaultScope = {afdbddaa-5d3f-42ee-b79c-185a7020515b}
IE - HKU\S-1-5-21-3963389296-900692964-1275611924-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://{searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-3963389296-900692964-1275611924-1001\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = hxxp://{searchTerms}&SearchSource=4&ctid=CT2851647
IE - HKU\S-1-5-21-3963389296-900692964-1275611924-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3963389296-900692964-1275611924-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - "uTorrentBar_DE Customized Web Search"
FF - "hxxp://{searchTerms}"
FF - prefs.js..browser.startup.homepage: "chrome://speeddial/content/speeddial.xul"
FF - prefs.js..extensions.enabledAddons: %7B64161300-e22b-11db-8314-0800200c9a66%7D:
FF - prefs.js..extensions.enabledAddons: %7B6AC85730-7D0F-4de0-B3FA-21142DD85326%7D:2.8
FF - prefs.js..extensions.enabledAddons: %7B81BF1D23-5F17-408D-AC6B-BD6DF7CAF670%7D:
FF - prefs.js..extensions.enabledAddons: %7BCAFEEFAC-0016-0000-0033-ABCDEFFEDCBA%7D:6.0.33
FF - prefs.js..extensions.enabledAddons: %7BCAFEEFAC-0016-0000-0037-ABCDEFFEDCBA%7D:6.0.37
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:17.0.1
FF - prefs.js..keyword.URL: "hxxp://"
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\ C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_135.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\ C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\ C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll ()
FF - HKLM\Software\MozillaPlugins\,version=: File not found
FF - HKLM\Software\MozillaPlugins\,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\,version=1.6.0_37: C:\Windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\ C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\,version=1.5: C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.12.09 15:08:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 16.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2012.11.08 11:04:56 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 16.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
[2011.11.01 07:37:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Skywalk3r\AppData\Roaming\mozilla\Extensions
[2012.12.12 16:54:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Skywalk3r\AppData\Roaming\mozilla\Firefox\Profiles\ybcw8bdb.default\extensions
[2012.08.03 12:57:20 | 000,000,000 | ---D | M] (ColorZilla) -- C:\Users\Skywalk3r\AppData\Roaming\mozilla\Firefox\Profiles\ybcw8bdb.default\extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326}
[2012.11.17 15:35:42 | 000,000,000 | ---D | M] (iMacros for Firefox) -- C:\Users\Skywalk3r\AppData\Roaming\mozilla\Firefox\Profiles\ybcw8bdb.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}
[2012.10.11 07:58:38 | 000,281,285 | ---- | M] () (No name found) -- C:\Users\Skywalk3r\AppData\Roaming\mozilla\firefox\profiles\ybcw8bdb.default\extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi
[2012.12.12 16:54:06 | 000,036,098 | ---- | M] () (No name found) -- C:\Users\Skywalk3r\AppData\Roaming\mozilla\firefox\profiles\ybcw8bdb.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
[2012.11.23 14:01:49 | 000,804,627 | ---- | M] () (No name found) -- C:\Users\Skywalk3r\AppData\Roaming\mozilla\firefox\profiles\ybcw8bdb.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2011.12.13 19:49:56 | 000,000,931 | ---- | M] () -- C:\Users\Skywalk3r\AppData\Roaming\mozilla\firefox\profiles\ybcw8bdb.default\searchplugins\conduit.xml
[2012.12.09 15:08:24 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2012.12.09 15:08:24 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
[2012.12.09 15:08:24 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2012.12.09 15:08:24 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
[2012.12.09 15:08:44 | 000,262,112 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012.06.23 12:24:31 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2012.08.30 10:31:45 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012.06.23 12:24:31 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2012.06.23 12:24:31 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2012.06.23 12:24:31 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2012.06.23 12:24:31 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
========== Files/Folders - Created Within 30 Days ==========
[2012.12.09 15:09:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft-Maus- und Tastatur-Center
[2012.12.09 15:09:18 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Mouse and Keyboard Center
[2012.12.09 15:08:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2012.12.09 12:49:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2012.12.09 12:49:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2012.12.07 18:45:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2012.12.07 18:44:58 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2012.12.07 18:44:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2012.12.07 18:44:58 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2012.12.07 18:44:58 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2012.12.04 09:41:28 | 000,037,976 | ---- | C] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysWow64\drivers\CFRMD.sys
[2012.12.03 16:40:09 | 000,000,000 | ---D | C] -- C:\Users\Skywalk3r\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\POV-Ray for Windows v3.62
[2012.12.03 16:39:32 | 000,000,000 | ---D | C] -- C:\Users\Skywalk3r\Pictures\Documents\POV-Ray
[2012.12.03 16:39:32 | 000,000,000 | ---D | C] -- C:\Users\Skywalk3r\AppData\Roaming\POV-Ray
[2012.12.03 16:27:30 | 000,000,000 | ---D | C] -- C:\Users\Skywalk3r\Desktop\Neuer Ordner (2)
[2012.12.02 18:37:20 | 000,000,000 | ---D | C] -- C:\Users\Skywalk3r\AppData\Roaming\DVDVideoSoftIEHelpers
[2012.12.02 18:37:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
[2012.12.02 18:36:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVDVideoSoft
[2012.12.02 18:36:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DVDVideoSoft
[2012.11.29 09:59:38 | 000,000,000 | ---D | C] -- C:\Users\Skywalk3r\Desktop\Neuer Ordner
[2012.11.21 07:16:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lazarus
[2012.11.17 15:45:50 | 000,000,000 | -HSD | C] -- C:\Windows\SysWow64\AI_RecycleBin
[2012.11.17 15:45:29 | 000,000,000 | ---D | C] -- C:\ProgramData\RapidSolution
[2012.11.17 15:45:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audials 10
[2012.11.17 15:45:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Audials
[2012.11.17 15:44:42 | 000,000,000 | ---D | C] -- C:\Users\Skywalk3r\AppData\Local\RapidSolution
[2012.11.17 11:09:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Comodo
[2012.11.17 11:07:15 | 000,000,000 | ---D | C] -- C:\ProgramData\CPA_VA
[2012.11.15 20:19:03 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\COMODO
[2012.11.15 20:18:51 | 000,000,000 | -H-D | C] -- C:\VritualRoot
[2012.11.13 20:02:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Comodo
[2012.11.13 20:02:45 | 000,000,000 | ---D | C] -- C:\Program Files\COMODO
[2012.11.13 20:02:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
[2012.11.13 20:02:38 | 000,000,000 | ---D | C] -- C:\Users\Skywalk3r\AppData\Local\Comodo
[2012.11.13 20:02:31 | 000,054,024 | ---- | C] (COMODO CA Limited) -- C:\Windows\SysNative\certsentry.dll
[2012.11.13 20:02:31 | 000,045,832 | ---- | C] (COMODO CA Limited) -- C:\Windows\SysWow64\certsentry.dll
[2012.11.13 20:02:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Comodo
[2012.11.13 19:11:29 | 000,047,240 | ---- | C] (RapidSolution Software AG) -- C:\Windows\SysNative\drivers\tbhsd.sys
[2012.11.13 19:11:20 | 000,037,480 | ---- | C] (RapidSolution Software AG) -- C:\Windows\SysNative\drivers\rrnetcap.sys
